diff --git a/debian/resources/fail2ban/freeswitch-sip_auth_challenge.conf b/debian/resources/fail2ban/freeswitch-sip_auth_challenge.conf new file mode 100644 index 0000000..3407183 --- /dev/null +++ b/debian/resources/fail2ban/freeswitch-sip_auth_challenge.conf @@ -0,0 +1,21 @@ +# Fail2Ban configuration file +# +# Author: soapee01 +# + +[Definition] + +# Option: failregex +# Notes.: regex to match the password failures messages in the logfile. The +# host must be matched by a group named "host". The tag "" can +# be used for standard IP/hostname matching and is only an alias for +# (?:::f{4,6}:)?(?P[\w\-.^_]+) +# Values: TEXT +# +failregex = \[WARNING\] sofia_reg.c:\d+ SIP auth challenge \(REGISTER\) on sofia profile \'\w+\' for \[.*\] from ip + +# Option: ignoreregex +# Notes.: regex to ignore. If this regex matches, the line is ignored. +# Values: TEXT +# +ignoreregex =